Previous Topic: Query String Method for Passing User Identity

Next Topic: Sample Configuration

Delegated Authentication Configuration

Delegated authentication is configured at the asserting party, where an assertion is generated based on an authenticated user identity.

To configure delegated authentication

  1. Determine which method (cookie or query string) the third-party WAM uses to pass the user identity to Federation Manager.
  2. Go to the Single Sign-on step in the Partnership wizard to set up delegated authentication.
  3. Go to Infrastructure, Deployment Settings to configure the open format cookie for delegated authentication.

    The open format cookie configuration for delegated authentication is global. The configuration is shared across all asserting-party partnerships that are configured for delegated authentication using the open format cookie as the authentication type.

Important! To use the legacy cookie or an SDK-created open format cookie, the third party must install a Federation Manager SDK. The SDK is a separately installed component from Federation Manager. The installation kit contains the documentation that describes how to use the SDK for delegated authentication.

More information

Single Sign-on Configuration (Asserting Party)

Deployment Settings


Copyright © 2010 CA. All rights reserved. Email CA about this topic